Global Information Security Senior Manager – Incident Response

3 months ago


Xuhui Qu, China Boston Consulting Group Full time
WHAT YOU'LL DO
Under the general direction of the Information Security Director – Incident Response or delegate and working with other Risk, IT, BST, etc. colleagues across the firm, the roles will perform the following functions:

Participate as an integral part of the Security Team and IT in general
  • Work closely with CSIRT team people & technology to detect, assess, and communicate cyber threats
  • Update the Security Team and other groups on industry trends and recommend initiatives to help lower risk
  • Define SIEM use cases to collect, monitor and analyze data to discover and discern trends, threats, and security risks associated with BCG assets and information.
  • Recommend and create SIEM rules to protect BCG and BCG client confidential information
  • Proactively monitoring and analyze logs via the SIEM for indicators of attack
  • Mentoring more junior team members
  • With the Information management team, follow-up on incidents, issues, and concerns related to data loss
  • Manage incidents related to data loss, producing alerts and escalating issues to appropriate management
  • Provide SIEM solutions and support for specific case team and/or project needs and requirements
  • Develop and produce operational metrics that demonstrate the effectiveness of controls, quantifies security risks and issues, confirms service levels, tracks incident type and volume
  • Apply industry and BCG security knowledge, policy, standards, practices to incident response
  • Respond to inquiries related to data loss and inappropriate sharing
  • Develop standard materials in support of BCG Information Security
  • Respond to, and to the extent possible, accommodate special requests and requirements
  • Track and report on security issues
  • All other tasks and responsibilities as requested by manager
Maintain up-to-date knowledge of the cyber security industry as it relates to BCG including:
  • Attacker methods and TTPs
  • Standards, regulations and legislation.
  • Threats and vulnerabilities
  • Technologies and solutions
  • Industry best practices
  • Client requirements and concerns
Provide input and represent BCG and client interests in the areas of:
  • Incident response and investigation
  • Incident response management for client security incidents
  • Work with IT Directors, Managers, Architects and staff to implement, monitor and maintain Confidentiality, Availability and Integrity of BCG information assets.
  • Track and manage materials provided to external providers and clients.
  • Maintain information security credentials and certifications as required to present a credible presence to internal and external audiences.

YOU'RE GOOD AT
  • Technical and functional expertise
    • Requires an advanced level of professional knowledge in information technology and security developed through a combination of advanced degrees in information technology and hands on experience.
    • Must have previous career development experience which has provided management skills, motivational skills, interpersonal skills, and outstanding organizational effectiveness.
    • Knowledge of the legal and regulatory landscape related to security and privacy in an international environment.
    • Very strong business sense with ability to relate technology issues to business.
  • Problem solving, analytical skills and decision making
    • Requires strong analytical skills and abilities including an extensive knowledge of software, database, operating systems, client server architecture and voice and data communication services and facilities, security and privacy, in an international setting.
    • Collect, review, and analyze various metrics, which help to measure and monitor systems, departmental performance, and quality. Discern and analyze trends.
    • Review and prepare monthly status reports and statistics.
    • Manage group and project budgets.
  • Communication, interpersonal and teaming skills
    • Outstanding verbal and written communications skills are a must because of the requirement to represent BCG in communications with clients.
    • Calm demeanor, grace under fire, outstanding listening skills.
  • Leadership, impact and change
    • High level of initiative and self-motivation, resourceful, and patient with an iterative process.
    • Ability to gain trust and commitment of others at different levels of the organization.
    • Proven ability to challenge traditional way of operating and moving beyond the obvious.
    • Translates BCG’s broader strategic objectives and cascades these into own work plans, metrics and team work plans.
    • Works effectively with significant ambiguity and fluctuating priorities and constrains.
  • Work management, organization and planning
    • Ability to evaluate and prepare detailed project plans for technology projects that will be implemented across the business. Manage local and global technology problems and direct staff in resolution of such problems. Evaluate and advise on the technology and systems components associated with projects adopted by BCG corporate and offices.
    • Ability to monitor projects and direct staffs to ensure projects are aligned with the strategic objectives of the business.
  • Customer and business focus
    • Focuses on the most critical issues that have the highest impact on the organization and business needs.
    • Working mode: “enabling”, “value adding” and “expanding”.
    • Treats all others with respect; generate trust.
  • People management
    • This position requires interaction with BCG Partners, BCG Case Team staff, client legal and security staff, Administrative Management, vendors, IT Management and Staff, Legal Department, Finance, Vendors, etc. Very strong relationship skills are essential. Excellent Leadership and teaming skills are required.
  • Values and ethics
    • Strong sense of confidentiality and integrity.
    • Treats others with respect and generates trust.
    • Establish relationships based on respect, trust and integrity.

YOU BRING (EXPERIENCE & QUALIFICATIONS)
  • Bachelor’s degree (or equivalent);
  • Minimum 9 years of information security experience, with a very strong technical background
  • Significant information security and risk management experience in a multinational enterprise
  • Demonstrated Threat Hunting and Incident Response experience (from a Consultancy or SOC environment)
  • Experience with Security Information and Event Management (SIEM) monitoring tools and their use (Splunk, Arcsight, QRadar or similar)
  • Security certification like GIAC Cyber Threat Intelligence (GCTI), GIAC Certified Intrusion Analyst (GCIA) or GIAC Certified Incident Handler (GCIH) or equivalent a plus.
  • Fluent in both oral and written English.

YOU'LL WORK WITH
BCG’s information technology group collaboratively delivers the latest digital technologies that enable our consultants to lead and our business to grow. For our IT jobs, we seek individuals with expertise in the areas of IT infrastructure, application development, business systems, collaborative and social technologies, information security, and project leadership.


  • Xuhui Qu, China Boston Consulting Group Full time

    ROLE OVERVIEWAs a key member of the Information Security team, reporting to the Director of Incident Response, you will collaborate with various departments including Risk and IT to execute the following responsibilities: Engage actively with the Security Team and IT to:Collaborate with the Cyber Security Incident Response Team (CSIRT) to identify, evaluate,...


  • Xuhui Qu, China Boston Consulting Group Full time

    ROLE OVERVIEWIn alignment with the directives of the Information Security Director – Incident Response or their appointed representative, and in collaboration with various teams including Risk, IT, and BST, the incumbent will undertake the following responsibilities: Become a vital member of the Security Team and the broader IT department by:Collaborating...


  • Xuhui Qu, China Boston Consulting Group Full time

    ROLE OVERVIEWIn alignment with the directives of the Information Security Director – Incident Response or their representative, and in collaboration with colleagues from Risk, IT, BST, and other departments, this position encompasses the following responsibilities: As a vital member of the Security Team and the broader IT department, you will:Collaborate...


  • Xuhui Qu, China Boston Consulting Group Full time

    About the RoleBoston Consulting Group is seeking a highly skilled IT Senior Specialist to join our team as a Global IT Configuration Engineer. This individual will be responsible for providing technical expertise and support for our Exchange environment and supporting tools.The successful candidate will have a strong background in implementing and managing...


  • Xuhui Qu, China Boston Consulting Group Full time

    About the RoleBoston Consulting Group is seeking a highly skilled IT Senior Specialist to join our team as a Global IT Configuration Engineer. As a key member of our IT team, you will be responsible for providing technical expertise and support for our Exchange environment and supporting tools.In this role, you will focus on driving the implementation and...


  • Xuhui Qu, China Boston Consulting Group Full time

    WHAT YOU'LL DOYou will have overall leadership responsibility for the Finance Function across BCG's Greater China (GC) system and lead a team of approximately 30 finance professionals. As the GC Finance Senior Director, you will be supported by one Finance Director and three Senior Finance Managers. You will dually report to the GC System Leader - who sets...


  • Xuhui Qu, China Boston Consulting Group Full time

    About the RoleWe are seeking a highly experienced and skilled Finance Leader to join our team at Boston Consulting Group as the Senior Director of Finance for Greater China. This is a critical role that will require you to lead the finance function across our Greater China system, overseeing a team of approximately 30 finance professionals.Key...


  • Haidian Qu, China Marsh McLennan Companies Full time

    Description: Marsh China is seeking candidates for the following position based in Shanghai/Beijing office: Senior IT Manager/IT Leader Senior IT Manager/IT Leader for Marsh China is responsible for managing the technology landscape and IT operations for Marsh China. This role will report to Marsh Asia IT Director. What can you expect? Make a...


  • Xuhui Qu, China Boston Consulting Group Full time

    About the RoleAs a Senior Knowledge Analyst at Boston Consulting Group, you will be part of a growing global team that delivers value to clients through individual expertise and institutionalized knowledge assets. You will contribute to cases and proposals by providing relevant analysis and insights, helping case teams create strong impact for the client....


  • Xuhui Qu, China Boston Consulting Group Full time

    WHAT YOU'LL DOAs a Senior Knowledge Analyst (SKA) In a Client Focused role within BCG's POP Practice Area, you will work in a growing global team, delivering value to clients via individual expertise and/or institutionalized knowledge assets (products, tools, data, workshops, frameworks, surveys, domain-specific data and related expertise, etc.). You will...


  • Xuhui Qu, China Boston Consulting Group Full time

    WHAT YOU'LL DOAs a Senior Knowledge Analyst (SKA) In a Client Focused role within BCG's Healthcare Practice Area, you will work in a growing global team, delivering value to clients via individual expertise and/or institutionalized knowledge assets (products, tools, data, workshops, frameworks, surveys, domain-specific data and related expertise, etc.). You...


  • Xuhui Qu, China Boston Consulting Group Full time

    About the RoleWe are seeking a highly experienced and skilled Finance Leader to join our team at Boston Consulting Group as the Senior Director of Finance for Greater China. This is a critical role that will require you to lead the finance function across our Greater China system, overseeing a team of approximately 30 finance professionals.Key...


  • Xuhui Qu, China Boston Consulting Group Full time

    About the RoleWe are seeking a highly experienced and skilled Finance Leader to join our team at Boston Consulting Group as the Senior Director of Finance for Greater China. This is a critical role that will require you to lead the finance function across our Greater China system, overseeing a team of approximately 30 finance professionals.Key...


  • Xuhui Qu, China Boston Consulting Group Full time

    About the RoleWe are seeking a highly experienced and skilled Finance Leader to join our team at Boston Consulting Group as the Senior Director of Finance for Greater China. This is a critical role that will require you to lead the finance function across our Greater China system, overseeing a team of approximately 30 finance professionals.Key...


  • Xuhui, China Visteon Corporation Full time

    Join Visteon, where our impact is recognized globally — not only within our organization but also by industry leaders and millions of drivers worldwide. This is YOUR opportunity. As a global technology pioneer in the mobility sector, we prioritize building cross-functional and cross-cultural teams that foster your growth. Here, our work transcends...


  • Xuhui, China Visteon Corporation Full time

    At Visteon, our work is both impactful and acknowledged —not only by our organization but also by industry leaders and millions of drivers globally. This is YOUR opportunity. As a prominent global technology innovator in the mobility sector, we prioritize building cross-functional and cross-cultural teams that facilitate your growth. Here, our...


  • Xuhui District, China Avery Dennison Smartrac Full time

    About Avery Dennison SmartracAvery Dennison Smartrac is a global leader in materials science and digital identification solutions. We provide a wide range of branding and information solutions that optimize labor and supply chain efficiency, reduce waste, advance sustainability, circularity and transparency, and better connect brands and consumers.Our...

  • Marketing Coordinator

    2 months ago


    Xuhui, China JM Huber Corporation Full time

    Summary Purpose of Job: To lead & implement regional digital marketing communications initiatives while collaborating with Global Marketing Communications peers to ensure global branding alignment and execution of global process To plan and project manage marketing initiatives led by Senior Marketing Manager to achieve regional commercial goals...

  • Research Analyst

    6 days ago


    Xuhui Qu, China Boston Consulting Group Full time

    About the RoleBoston Consulting Group is seeking a highly motivated and detail-oriented individual to support our China Research Team in various research requests, with a focus on the Japan market.Key ResponsibilitiesConduct in-depth research and analysis to support business development initiativesDevelop and maintain databases and spreadsheets to track...


  • Pu Dong Xin Qu, China SHG Labcorp Pharmaceutical Research and Development (Shanghai) Co., Ltd. Full time

    Company Overview: At Labcorp, we believe in the power of science to change lives. We are more than 60,000 people across 100 countries who are harnessing science for human good. Our work combines unparalleled diagnostic laboratories, drug development capabilities and commercial innovations. Together, we fuel scientific breakthroughs and deliver more...